#csaf

4 posts · Last used 6d

Back to Timeline
Cedric @cedric@social.circl.lu · 6d ago
282,000+ VEX records are now in Vulnerability-Lookup 🎉 🔎 https://vulnerability.circl.lu/vex SUSE just joined Red Hat and Microsoft as a VEX source — so from any CVE you can see whether a vendor says a product is affected, fixed, or not affected. VEX statements are attached directly to each vulnerability and available via the open API. 🧑‍💻 https://github.com/vulnerability-lookup/vulnerability-lookup #VEX #CSAF #VulnerabilityManagement #OpenSource #InfoSec #GCVE #CVE #CYberSecurity #Vulnerability
0
0
1
CERT@VDE @certvde@infosec.exchange · Jul 13, 2026
#OT #Advisory VDE-2026-031 WAGO: Early-Boot Diagnostic Exposure in WAGO System I/O Field Devices Certain devices in the WAGO System I/O Field series enable an internal diagnostic capability during the initial stages of system startup. This behavior, which is not part of the publicly documented feature set, briefly allows access to system functions before the main operating environment becomes fully active. Under specific conditions, this could permit interactions with system components that are normally protected during regular operation. #CVE CVE-2026-4769 https://certvde.com/en/advisories/vde-2026-031/ #CSAF https://wago.csaf-tp.certvde.com/.well-known/csaf/white/2026/vde-2026-031.json
0
0
0
Cedric @cedric@fosstodon.org · Jul 10, 2026
🆕 Vulnerability-Lookup now imports Microsoft CSAF VEX documents from MSRC — joining the Red Hat VEX feed as a vendor VEX enrichment source. Per-CVE VEX statements (product status, severity) are attached directly to CVE records, visible on the vulnerability page and via the API with the full CSAF documents. Example with both Red Hat and Microsoft VEX: https://vulnerability.circl.lu/vuln/CVE-2026-53359#vex #VEX #CSAF #VulnerabilityManagement #CVE #OpenSource
1
0
2
BSI @bsi@social.bund.de · Jun 10, 2026
👉 Ihr folgt uns als BSI hier im Fediverse und wollt keine IT-Sicherheitsmitteilung unseres CERT-Bund, dem Computer Emergency Response Team für Bundesbehörden, verpassen? Dann folgt auch @certbund@social.bund.de, der zentralen Anlaufstelle für präventive und reaktive Maßnahmen bei sicherheitsrelevanten Vorfällen in Computer-Systemen. CERT-Bund ist Mitglied des #CSIRTsNetwork der EU und ein starker Unterstützer des Common Security Advisory Framework #CSAF. Gern weitersagen! 🔄
61
2
78

You've seen all posts